Skip to content

How to Fix Microsoft or Google Authenticator Not Working

Applies toMicrosoft Authenticator, Google Authenticator (iOS & Android)
4 min fix Updated 7 Aug 2026
Quick Answer

Open your phone's Settings, go to General > Date & Time, and toggle Set Automatically off and back on to force a time sync.

Checked against Microsoft Learn - end of support and retirement and Google Chrome Releases between 5 Aug 2026 and 12 Sep 2026. Nothing published in that period has been linked to this guide.

Summary

When your authenticator app breaks, you are completely locked out of your work email, VPN, and files. This usually happens when the time on your phone is slightly out of sync, or when the app's push notifications are blocked. This guide shows you how to get your codes working again without having to call the IT Helpdesk.

Symptoms

  • You type in the 6-digit code, but the website says "Invalid Code"
  • Codes that worked yesterday are rejected or don't work today, on every account in the app
  • You don't receive the "Approve / Deny" pop-up on your phone when logging in, even though the sign-in screen says one was sent
  • The authenticator app is blank or missing your company account

Before You Start

  • You must have your phone with the Authenticator app installed

Instructions

1. Fix "Invalid Code" Errors (Time Sync Issue)

Authenticator codes are generated based on the exact time. If your phone's internal clock is even one minute off from the global time servers, every code it generates will be rejected.

For Google Authenticator:

  1. Open the Google Authenticator app.
  2. Tap the three dots (menu) in the top right corner.
  3. Tap Settings > Time correction for codes.
  4. Tap Sync now. It will confirm the time has been synced, and your codes will work immediately.

For Microsoft Authenticator (and general phone time): Microsoft relies on your phone's system clock. You must force the phone to check the network time.

  • iPhone: Go to Settings > General > Date & Time. Turn Set Automatically OFF, wait 10 seconds, then turn it back ON.
  • Android: Go to Settings > System > Date and time. Turn Set time automatically OFF, wait 10 seconds, then turn it back ON.

2. Fix Missing Push Notifications (The "Approve/Deny" Pop-up)

A silent phone during sign-in is a notification problem rather than a login one.

If you are trying to log in and the website says "We sent a notification to your mobile device," but your phone never buzzes, the app is asleep or notifications are blocked.

  1. Force open the app: Don't wait for the notification to pop up on your lock screen. open the Authenticator app yourself. Often, the approval prompt is sitting right there waiting for you.
  2. Check Notification Settings (iPhone): Go to Settings > Notifications > Authenticator. Ensure Allow Notifications is turned on.
  3. Check Notification Settings (Android): Go to Settings > Apps > Authenticator > Notifications. Ensure they are enabled.
  4. Disable Battery Saver: If your phone is in "Low Power Mode" or "Battery Saver Mode," it stops apps from fetching data in the background. Turn off battery saver and try logging in again.

3. "My Account Disappeared" or "I Got a New Phone"

If you open the Authenticator app and it is completely blank, or you transferred all your apps to a new phone, your codes are gone.

For extreme security reasons, Authenticator apps tie themselves to the physical hardware of the phone. When you get a new phone, the app transfers over, but the security tokens do not.

The Fix: You cannot fix this on your phone. You must register the new phone.

  1. If you still have the old phone, go to your company's security portal (e.g., mysignins.microsoft.com) and register the new phone.
  2. If you traded in or lost the old phone, follow How to Recover Microsoft Authenticator After Losing Your Phone — it shows you how to sign in with a backup method and register the new device. If no backup method is registered, call your IT Helpdesk and tell them: "I got a new phone and need my MFA (Multi-Factor Authentication) reset." They will wipe the old phone from the system and let you register the new one.
  3. Prevent the next lockout. After you regain access, follow How to Set Up Self-Service Password Reset (SSPR) — with SSPR registered, a locked account is recoverable without a ticket.

Troubleshooting

Symptom / ErrorPotential CauseSolution
App requires a PIN/FaceID every time it opensApp Lock featureThis is a security feature to prevent snooping. You can usually toggle it off in the Authenticator app's internal Settings menu
"Notification couldn't be delivered" on PC screenNo internet on phoneYour phone must have a cellular or Wi-Fi connection to receive the push notification

Last updated:

Frequently asked questions

Why does the time on my phone matter for MFA?
Authenticator apps generate codes based on the current exact second. If your phone's clock is even 30 seconds out of sync with the main server, every code will be rejected as invalid.
What should I do if I am not receiving push notifications to approve?
Check your phone's notification settings to ensure the Authenticator app is allowed to show alerts on the lock screen. If push fails, you can always open the app and manually type the 6-digit code.